Improper access control in Gitlab Community Edition and GitLab Enterprise Edition - CVE-2026-6552

 

Improper access control in Gitlab Community Edition and GitLab Enterprise Edition - CVE-2026-6552

Published: June 11, 2026 / Updated: June 12, 2026


Vulnerability identifier: #VU134371
CSH Severity: Low
CVSS v4: 8.5 [CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-6552
CWE-ID: CWE-284
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote user to take over another user's GitLab account.

The vulnerability exists due to improper access control in group SAML identity management functionality when managing group SAML identities through the Group SAML Identity API. A remote privileged user can exploit authorization flaws to take over another user's GitLab account.

The issue occurs under certain conditions and affects users with the group Owner role.


Affected software

Gitlab Community Edition
GitLab Enterprise Edition

How to mitigate CVE-2026-6552

Install security update from vendor's website.

Gitlab Community Edition - addressed in versions 18.10.8, 18.11.5, 19.0.2
GitLab Enterprise Edition - addressed in versions 18.10.8, 18.11.5, 19.0.2

External References

Related Security Bulletins